Cisco 1000 Series Aggregation Services Routers (ASR 1000)
Score 9.2 out of 10
N/A
The Cisco 1000 Series Aggregation Services Routers (ASR 1000) is a SD-WAN ready router.
N/A
FortiGate
Score 8.7 out of 10
N/A
FortiNet FortiGate is a firewall option with high integrability. It offers a variety of deployment options and next-gen firewall capabilities, including integration with IaaS cloud platforms and public cloud environments.
N/A
Pricing
Cisco 1000 Series Aggregation Services Routers (ASR 1000)
Fortinet FortiGate
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
Cisco 1000 Series Aggregation Services Routers (ASR 1000)
FortiGate
Free Trial
No
Yes
Free/Freemium Version
No
No
Premium Consulting/Integration Services
No
No
Entry-level Setup Fee
No setup fee
No setup fee
Additional Details
—
FortiGate pricing starts at $250 for home office use, up to $300,000 for large enterprise appliances.
Must contact sales team for pricing.
Cisco ASA is [a] good product but you can't say this is providing the security from every points. Lots of features are missing in Cisco ASA but Fortinet [FortiGate] is fully loaded and all the advanced features are available for secure your company.
Cisco 1000 Series Aggregation Services Routers (ASR 1000)
Fortinet FortiGate
Likelihood to Recommend
Cisco
- It is well suited for companies that have a big WAN environment, this devices can fit in there easily and have multiple provider circuits. - Well suited for private cloud environments where multi tenancy is required, - Device can be used as IPN/ISN device as it supports jumbo frames for an ACI multi-site/remote leaf deployment. - Device is well suited for branches that have their own DIA and MPLS circuits.
Fortinet FortiGate addressed an immediate security issue we had a few years ago. The device gave us a much clearer picture of the activities on our network and also more importantly, increased our awareness of threats from the internet as a whole. Fortinet FortiGate helps us to mitigate these threats with regular signature updates from Fortiguard labs, identifying certain characteristics which, once recognised by Fortinet FortiGate, can be harnessed to deploy powerful 'playbooks'.
SD-WAN - Load balancing of Internet traffic is a USP of Fortigate and makes it stand tall in the competition. Be it 3 or more Internet Links, multiple Subnets/segments of users to distribute and bandwidth load balancing for links and users. SLA based monitoring of Internet Links / MPLS links, makes it even better to choose the links on the basis of performance (Latency, packet loss, Jitter etc).
SSL VPN configuration - As we all have WFH force (to some extend or all employee) during Covid-19, it is impossible to plan BCP without having a SSL VPN. In Fortigate, the SSL VPN configuration is very easy with the help of wizard. The deep CLI-level debugging is also very helpful in troubleshooting. Type of tunnel can be easily configured - Full Tunnel or Split Tunnel for SSL.
Explicit Proxy - This is also a great feature to shape and re-route the traffic, configuring the Proxy on the Firewall itself. We are using this feature in Pilot for now, and planned to rollout in few weeks looking at the success rate of the POC.
The ASR 1000 series routers can, as with most devices, improve with additional memory capacity and upgraded chip sets for faster processing.
There seems to be limitations on the number of routing sessions the smaller ASR devices can handle, which can be overcome with proper planning and placement within the network.
The device without a doubts performs at the level required and expected, we can renew it and use it as we have been using it for years. The device can be used as DCI, IPN/ISN, or even private cloud for customer circuit handoff, it also supports IPSec properly. The device is well suited in multiple segments of the network.
Fortinet's products have kept improving with new software releases and they continue to deliver great value. Their support is also very good. I believe that as a small enterprise, their products have given us competitive advantage delivering features and functionality that enable us to innovate and do things better. They also continue to be a leader in the markets they serve.
All our modular contingency service exercises use this equipment, it allows us to perform this type of exercises very easily, in a controlled and effective way. It is used at least once a month for these types of events. It also allows configuration replication in computers that are under the same model.
The firewall runs very well, firmware updates are fairly quick but you must follow the upgrade path. Neglecting this step will cause a lot of pain. If you decide to go with Fortinet FortiGate switches and/or access points, they can be managed within the firewall which is great. We're also using the FortiAnalyzer which easily plugs into the firewall for any reporting you may require.
We have received training on the equipment, which has made us add more networks on our own, we provide first level support, we validate the publication of the equipment and we can satisfy the needs of our internal clients in terms of the prompt recovery of the affected services
The Support team at Fortinet is excellent. They can not only help you configure the device for what you are trying to do, they offer suggestions on improving rules, and troubleshooting issues. Their response time is fast, ensuring you are up and running immediately with no questions asked. We had a hard drive failure in one of our Fortinet Fortigate appliances. The tech answered immediately, and started rebuilding the drive after some preliminary investigations. After rebuilding, there were still errors and issues, so they dispatched a brand new Fortinet Fortigate appliance. The tech then backed up the configurations for when the new device came in, which showed up in a few hours. A restore of the configuration took less than a minute, and there were no more errors or issues.
Before standardizing on the Cisco ASR 1000 we had explored the idea of using Juniper routers. Ultimately we felt the Cisco ASR 1000 was a better fit at the time. We have been very happy with this decision, but it might not be the right decision for everyone. It fit our environment and our needs very well, Juniper is also a very good choice.
[Fortinet] FortiGate is not only cost effective but it gives the comprehensive security against the APT attacks and gives the complete traffic visibility and granular control. You can easily create the VDOMs (Virtual firewall) within a Fortigate firewall and customize the dashboard as per your requirement if you have multiple VDOMs within a single firewall.
It is a healthy return on investment with planned packed size data. Average unicast latency is low and consistent with small and large packets (barring mid-sized).
Cisco devices last longer and also have a decent trade-in policy to recover some value when equipment is replaced.
Higher concurrent IPSec tunnels are offered, we tested for 1500+, fielding both encrypted and a mix of encrypted and cleartext traffic.
The pricing given to us for our firewall was well within what we were already spending for other vendors solutions and had the added value of eliminating a separate expense for a dedicated web filtering appliance.
We have also adopted Fortinet's security fabric approach and thus changed vendors for our switch and AP devices. These devices have come at reduced prices as compared to another previous vendor we were using, particularly in relation to ongoing annual maintenance costs.